Information Security Manager overseeing cybersecurity and compliance in SEB's Baltic region. Enhancing security frameworks and leading initiatives to combat evolving cyber threats.
Responsibilities
Lead the improvements of the Information Security Management System (ISMS), ensuring it scales with organizational growth and the evolving threat landscape.
Design and implement processes for identifying and treating ICT Risks in strict alignment with Non-Functional Requirements (NFR) and ICT frameworks.
Perform security risk assessments for business and technology initiatives, ensuring security standards are met.
Oversee the third-party assurance framework ensuring third-party vendors comply with security policies and requirements.
Translate complex regulations (GDPR, DORA, NIS2) into actionable internal control sets. Respond to enquiries from regulatory bodies and audit institutions.
Participate during security incidents, specifically managing the regulatory and data protection implications of Data Breaches and Third-Party incidents.
Participate in security awareness and training programs for both employees and third parties to foster a risk-aware culture.
Developing and presenting high-level security posture dashboards, risk heatmaps, and compliance roadmaps to stakeholders.
Requirements
At least 5+ years of experience in the Information Security field, with a specialized focus on the GRC domain.
Experience in designing and implementing security processes and frameworks, rather than just maintaining them.
Ability to lead and manage large-scale security initiatives and complex projects from conception to completion.
Ability to translate technical cyber risks into business impact for high-level stakeholders.
Experience in navigating regulatory and legal complexities.
Good communication and teamwork skills.
Ability to work well under minimal supervision.
Have a strong drive for improvements.
Professional information security certifications.
Fluency in **English **and at least one of local **Baltic language** (Latvian, Lithuanian or Estonian), with excellent verbal and written communication skills.
Benefits
Interesting and challenging work in highly professional international team.
Friendly and welcoming culture.
Hybrid way of working.
Extensive opportunities for professional development.
Cybersecurity Specialist protecting DSV Contract Logistics IT platforms. Manage cybersecurity risks and embed security into IT solutions while ensuring operational continuity.
Regional Security Manager responsible for security operations at EMEA Data Centers. Collaborating with cross - functional teams for compliance and incident management.
Chargé.e d’Etudes et Travaux en systèmes électromécaniques de sécurité at RATP Infrastructures. Responsible for ensuring technical compliance and supervising project activities on - site.
Senior Infrastructure Security Engineer handling cloud security and infrastructure lifecycle for Zocks, a fintech startup. Responsible for security initiatives and compliance readiness in a rapidly growing team.
Data Center Security Officer ensuring safety and security for data center clients through patrols and monitoring. Conducting reports and maintaining client security requirements.
Cybersecurity Specialist overseeing the protection of clients' technology systems and networks. Implementing cybersecurity policies and conducting evaluations against cyber threats in a supportive working environment.
Providing security incident management for industrial environments at Telefónica Tech. Utilizing various monitoring platforms to enhance security posture.
Senior Cybersecurity Incident Responder at ZEISS handling technical incident response activities. Collaborating with cyber defense teams to ensure effective incident management and resolution.
Information Security Manager responsible for steering InfoSec programs globally at ZEISS. Leading cross - functional initiatives and risk management strategies in a high - tech environment.